Gitlab reports:
+++ +XSS via the Maven Dependency Proxy
+Project level analytics settings leaked in DOM
+Reports can access and download job artifacts despite use of settings to prevent it
+Direct Transfer - Authorised project/group exports are accessible to other users
+Bypassing tag check and branch check through imports
+Project Import/Export - Make project/group export files hidden to everyone except user who initiated it
+